2020-02-03 19:01:11 +00:00
{
"data_type" : "CVE" ,
"data_format" : "MITRE" ,
"data_version" : "4.0" ,
"CVE_data_meta" : {
"ID" : "CVE-2020-8574" ,
2020-08-03 17:01:22 +00:00
"ASSIGNER" : "security-alert@netapp.com" ,
"STATE" : "PUBLIC"
} ,
"affects" : {
"vendor" : {
"vendor_data" : [
{
"vendor_name" : "n/a" ,
"product" : {
"product_data" : [
{
"product_name" : "Active IQ Unified Manager for Linux 7.3 and above" ,
"version" : {
"version_data" : [
{
"version_value" : "Versions through 9.6"
}
]
}
}
]
}
}
]
}
} ,
"problemtype" : {
"problemtype_data" : [
{
"description" : [
{
"lang" : "eng" ,
"value" : "Unauthorized Code Execution"
}
]
}
]
} ,
"references" : {
"reference_data" : [
{
"refsource" : "MISC" ,
"name" : "https://security.netapp.com/advisory/ntap-20200803-0001/" ,
"url" : "https://security.netapp.com/advisory/ntap-20200803-0001/"
}
]
2020-02-03 19:01:11 +00:00
} ,
"description" : {
"description_data" : [
{
"lang" : "eng" ,
2020-08-03 17:01:22 +00:00
"value" : "Active IQ Unified Manager for Linux versions prior to 9.6 ship with the Java Management Extension Remote Method Invocation (JMX RMI) service enabled allowing unauthorized code execution to local users."
2020-02-03 19:01:11 +00:00
}
]
}
}